Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

FeedsContactPrivacy© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Drupal-SA-CORE-2019-003 — Proof-of-concept exploit for CVE-2019-6340 targeting Drupal's RESTful web services module, with curl-based RCE payload and detailed reproduction steps. | Kitploit
Tools/GitHubGitHub/g0rx/drupal-sa-core-2019-003
Vulnerability AnalysisExploitationWeb Application ExploitationWeb SecurityPenetration Testing
GitHubg0rx/drupal-sa-core-2019-003

Drupal-SA-CORE-2019-003

Proof-of-concept exploit for CVE-2019-6340 targeting Drupal's RESTful web services module, with curl-based RCE payload and detailed reproduction steps.

View Repository
307337 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Drupal-SA-CORE-2019-003 CVE-2019-6340

Drupal SA-CORE-2019-003 CVE-2019-6340

CVE-2019-6340.md https://mp.weixin.qq.com/s/EQD4-K6HgBY9wdzeXeyzkg

https://paper.seebug.org/821/

https://www.youtube.com/watch?v=QtLDDN0Duko

linkname

https://pbs.twimg.com/media/D0C-KiXX4AM2vR3.jpg:large

marty-mcfly

CVE-2019-6340 isn’t a default configuration, you have to manually enable Restful web services:

marty-mcfly

Command $ curl -k -v -H 'Content-Type: application/json' -d @./drupalrce.json 'https://<http://your.web.site >/node/<node_id>?_format=hal_json'

file drupalrce.json

marty-mcfly

Download Tool